You are viewing a single comment's thread from:

RE: What is a Safe Password or Private Key?

in #security7 years ago

honestly talking about safe keys, I would love to have my steemit key on a wordlist, rather than this mess. 52 random letters/numbers is a real pain to type and just typing out a few words feels a lot easier.

I honestly doubt you need a password entropy of over 300 bits, especially when this is an online password and steemit could limit logins or use something like bcrypt or argon2 to make hashing expensive as hell.

and even IF 300 bits would be needed, that's just 22 words from an 18450 words long word list (1password) and it's much easier to remember them a few words at a time and type them rather than typing this whole mess where most people probably cant remember more than 2 characters at a time because you dont just have small letters and numbers but also capitals.

but going to the 128 bits mentioned. 9 words are 127,5 bits, which should be more than enough. and that is for speed cracking.

if the password is hashed using something slow, and you would aquire enough power to crack a million of those slow af hashes per second, the you still have over 30 million years for a password of "just" 70 bits and even for 60 bits you still have tens of thousands of years on that assumption.

and as a quick note: 5 words from the mentioned list would already be 70 bits.

Coin Marketplace

STEEM 0.15
TRX 0.12
JST 0.025
BTC 54096.18
ETH 2412.88
USDT 1.00
SBD 2.10